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REMARKS 



icants request reconsideration of the rejection- 
5-13 were examined. Claims 1-4 having been 
arsuant to a Restriction Requirement. 
Examiner requires a "prior art" legend to be added to 
, 20, and 2 8-30, Replacement sheets for these 
ataining the required legend, accompany this Reply, 
also objected to the drawings as containing 
c|haracters not mentioned in the description. The 
has been amended above to add reference numbers 
to those noted by the Examiner. 
Examiner also objected to the drawings as containing 
ities. Replacement sheets for the indicated 
e also included to address the Examiner's concerns, 
aminer also objected to the disclosure as 
minor informalities as noted on Pages 4-5 of the 

The specification has been amended to address 
' s concerns . 
claims were found objectionable as containing 

numerals in parentheses. The amendments to the 
this matter as well. 
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5-10 were rejected under 35 U.S.C, 102(e) as being 
by Kocher et al., U.S. 6,278,783 (Kocher) . 



The Applicants respectfully traverse, noting that Kocher 
discloses a technique for improving DES and other 
cryptograph Lc protocols against external monitoring attacks by 
reducing th = amount of useful information leaked during 

More specifically, Kocher prepares two 56-bit 
ad KY2) corresponding to a secret key K. Kl is an 
arbitrary random number and K2 is derived by K2 = K XOR KYI. 
Then, Kocher makes a random permutation KIP of KY and a random 
permutation K2P of K2 . KY1P and KY2P are created such that 
kyp{KY1 } XOR K2P{K2} equals the standard DES key K. 

A fundamental difference between Kocher' s technique for 
improving EES and other cryptographic protocols and the 
present indention is that Kocher changes the bit sequences of 
the keys Kll and K2, whereas the present invention does not 
change the bit sequences of data A and data B because the data 
are loaded in accordance with each bit sequence. That is, the 
present indention changes the order of register loading of the 
data bits, but Kocher loads keys Kl and K2 into registers Rl 
and R2, respectively, and then performs an XOR operation on 
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of these two registers* Further, when loading 
the registers, Kocher permutes the sequence of 
of K2 of K2P, such that the following series of 
nust be performed: Rl load, R2 load, arithmetic 
Rl load, R2 load, arithmetic operation, Rl load, R2 

ic operation, .... 
in randomly changing the order of register loading, 
the bit sequences of data A and data B, the 
ion is patent ably distinguishable from Kocher. 
of Claim 5, Kocher does not perform steps of 
ejither: after transferring one operation unit in the 
of data A in a memory in order of its bit sequence 
register Rl, transferring one operation unit in the 
of data B in the memory in order of its bit 
a second register R2 ; or after transferring one 
it in the bit pattern of said data B in order of 
to the second register R2, transferring one 
n the bit pattern in said data A in order of its 
e to the first register Rl . Further, Kocher does 
a predetermined arithmetic operation on the 
the first register Rl and the contents of the 
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ter R2, store the result of the arithmetic 
and repeat the method steps until the arithmetic 
Dr data A and data B is finished, 
ing independent Claim 6, Kocher does not perform 
f selecting either transferring one operation unit 
a memory in order of its bit sequence to a first 
, and transferring one operation unit of data B in 
bit sequence to a second register R2 ; or 
the one operation unit of data A in order of its 
to the second register R2 and transferring the 
on unit of data B in order of its bit sequence to 

ister Rl. Further, Kocher does not execute a 
ed arithmetic operation on the contents of the 
titer Rl and the contents of the second register R2, 
Result of the arithmetic operation in the memory, 
the method steps until the arithmetic operation on 
data B is finished. 

11-13 were rejected under 35 U.S.C. 102(e) as 
ipated by Jahnich et al . , U.S. 6725,374 (Jahnich) . 
s traverse as follows. 
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1 includes steps of selecting any of an 
operation unit in a bit pattern of data A in a 
ferring the selected operation unit to a first 
and transferring one operation unit in a bit 
data B in the memory corresponding to the operation 
*d from data A to a second register R2 . 
i, on the other hand, discloses the order of 

an encryption program executed on a 
sor-mounted card, but randomly permutes the serial 

ion of subprograms in the execution of the 
program. Thus, while Jahnich teaches a technique 
replacing the start address of a subprogram with 
address of another subprogram, Jahnich fails to 

data processed by either subprogram. Necessarily, 
jahnich neither discloses nor suggests how each 
might process an operation unit of data A or data B 
Further, Jahnich does not disclose or fairly 
to select randomly an operation unit from among 
of data A or B. 
even considering Jahnich as disclosed, the person 
skill would never learn to draw a correspondence 
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